ZoneAlarm Firewall and Antivirus products before version 15.8.109.18436 allow an attacker who already has access to the system to execute code at elevated privileges through a combination of file permission manipulation and exploitation of Windows CVE-2020-00896 on unpatched systems.
References
Link | Resource |
---|---|
https://www.zonealarm.com/software/extreme-security/release-history | Release Notes Vendor Advisory |
Configurations
Information
Published : 2020-07-06 11:15
Updated : 2020-07-13 07:34
NVD link : CVE-2020-6013
Mitre link : CVE-2020-6013
JSON object : View
CWE
CWE-269
Improper Privilege Management
Products Affected
checkpoint
- zonealarm_extreme_security